Network Node Automatic Access via Probe Message Unicast
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing network access methods require manual configuration and selection of trusted nodes, especially in wireless access, which is cumbersome and insecure, while wired access is secure but requires complex operations.
Innovation Solution
A method where a first network node, having gained access to a preset network, receives a probe message from a second network node seeking access, and if the probe message includes a configuration mechanism identifier, the first node unicasts a reply message with its own IP address, establishing a network communication channel for automatic configuration and access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If manual configuration and selection of trusted nodes is required for network access, then security is improved, but operation complexity increases
Solution Approach 1:
The patent implements automatic network access where the access node autonomously selects a trusted anchor node and completes configuration without user intervention. The system performs self-service by automatically establishing secure connections, exchanging cryptographic materials, and configuring network parameters, thereby eliminating manual configuration steps while maintaining security through automated trusted node selection.
Solution Approach 2:
The patent establishes trusted relationships and cryptographic configurations in advance during network initialization. The anchor node pre-generates cryptographic materials and establishes trust anchors before actual network access occurs. This preliminary action ensures security is already in place when access nodes join, eliminating the need for manual security configuration during access.
2Ease of operation
If automatic network configuration is implemented, then ease of operation is improved, but security may be compromised
Solution Approach 1:
The patent introduces an anchor node as an intermediary that mediates between the access node and the network. The anchor node acts as a trusted intermediary that verifies access nodes, manages cryptographic materials, and establishes secure connections. This intermediary approach enables automatic configuration while maintaining security through the anchor node's verification and authorization functions.
Solution Approach 2:
The patent implements feedback mechanisms where the anchor node continuously monitors and verifies access nodes, and the system adjusts configurations based on security conditions. The automatic configuration process includes feedback loops for authentication, authorization, and key management, ensuring security requirements are met while maintaining operational simplicity.
3Reliability
If user intervention is required for network configuration, then security control is improved, but access time increases
Solution Approach 1:
The patent implements self-service automated configuration where the system autonomously performs node selection, cryptographic material exchange, and network parameter configuration without user intervention. This eliminates the time required for manual configuration steps while maintaining security through automated verification and authorization processes managed by the anchor node.
Solution Approach 2:
The patent performs security-critical actions in advance, including generation of cryptographic materials, establishment of trust anchors, and pre-configuration of security parameters. By completing these security control measures beforehand, the system enables rapid access without requiring user intervention during the actual connection process, thus reducing access time while maintaining security control.
4Reliability
If complex manual configuration procedures are used, then security is ensured, but productivity decreases
Solution Approach 1:
The patent implements automated self-service configuration that eliminates manual procedures entirely. The system autonomously performs node discovery, selection, authentication, and configuration, thereby removing the time-consuming manual steps while maintaining security through automated verification processes. This significantly improves productivity by enabling rapid network access without sacrificing security controls.
Solution Approach 2:
The patent performs all necessary security configurations and trust establishment in advance during network initialization and anchor node setup. By completing complex security procedures beforehand, the system enables rapid subsequent access without requiring repeated manual configuration, thus improving access efficiency and productivity while ensuring security is already in place.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The present invention relates to a method and device for accessing a network by a network node. A probe message broadcast by a second network node seeking access to the preset network is received (S 100). The probe message carries a second Internet Protocol, IP, address of the second network node. If the probe message includes a configuration mechanism identifier, a reply message of the probe message is unicasted (S200) to the second network node based on the second IP address. The reply message carries a first IP address of the first network node. The first IP address is configured for establishing a network communication channel between the second network node and the first network node. Network configuration information is sent (S300) to the second network node through the network communication channel. The network configuration information is configured to allow the second network node to access the preset network.